SBI Data Leak – Millions of Customers Data Leaked From Unsecured Server

SBI Data Leak allows anyone to access millions of its customer’s financial data and recent transactions history.

SBI is an Indian multinational, public sector banking and financial services, it is the largest bank in India with a 23% market share in assets.

According to TechCrunch report, an SBI server in Mumbai-based data center that stored the data from SBI Quick was left online without any password protection.

SBI Quick is free SBI service used by customers to get Account Balance, Mini Statement and more just by giving a Missed Call or sending an SMS with pre-defined keywords to pre-defined mobile numbers.

The bank has failed to protect the server which allows anyone by having the IP address of the server can access the data on millions of customers’ information.

It is not known for how long the server is kept open, Techcrunch confirms the server storing millions of messages every day.

Techcrunch reached out to SBI and the bank reacted quickly and fixed the issue within hours. If this information accessed by threat actors will pose a serious risk to bank customers.

You can follow us on LinkedinTwitterFacebook for daily Cybersecurity updates also you can take the Best Cybersecurity courses online to keep your self-updated.

Massive Collection of 2.2 Billion Usernames and Passwords Circulated in Hacker Forums

Cybercrime as a Service – Hackers Selling Ransomware, RDP logins and Credit Card Details on the Underground Markets

Gurubaran

Gurubaran is a co-founder of Cyber Security News and GBHackers On Security. He has 10+ years of experience as a Security Consultant, Editor, and Analyst in cybersecurity, technology, and communications.

Recent Posts

Hackers Exploiting DNS Poisoning to Compromise Active Directory Environments

A groundbreaking technique for Kerberos relaying over HTTP, leveraging multicast poisoning, has been recently detailed…

1 hour ago

New Android Malware Exploiting Wedding Invitations to Steal Victims WhatsApp Messages

Since mid-2024, cybersecurity researchers have been monitoring a sophisticated Android malware campaign dubbed "Tria Stealer,"…

1 hour ago

500 Million Proton VPN & Pass Users at Risk Due to Memory Protection Vulnerability

Proton, the globally recognized provider of privacy-focused services such as Proton VPN and Proton Pass,…

2 hours ago

Arcus Media Ransomware Strikes: Files Locked, Backups Erased, and Remote Access Disabled

The cybersecurity landscape faces increasing challenges as Arcus Media ransomware emerges as a highly sophisticated…

2 hours ago

Hackers Impersonate Top Tax Firm with 40,000 Phishing Messages to Steal Credentials

Proofpoint researchers have identified a marked increase in phishing campaigns and malicious domain registrations designed…

2 hours ago

Cybercriminals Exploit Public-Facing IIS, Apache, and SQL Servers to Breach Gov & Telecom Systems

A recent investigation by Unit 42 of Palo Alto Networks has uncovered a sophisticated, state-sponsored…

2 hours ago